if INET
config XFRM_USER
tristate "Transformation user configuration interface"
select XFRM_ALGO
help
Support for Transformation(XFRM) user configuration interface
like IPsec used by native Linux tools.
If unsure, say Y.
config XFRM_USER_COMPAT
tristate "Compatible ABI support"
depends on XFRM_USER && COMPAT_FOR_U64_ALIGNMENT && \
HAVE_EFFICIENT_UNALIGNED_ACCESS
select WANT_COMPAT_NETLINK_MESSAGES
help
Transformation(XFRM) user configuration interface like IPsec
used by compatible Linux applications.
If unsure, say N.
config XFRM_INTERFACE
tristate "Transformation virtual interface"
depends on XFRM && IPV6
help This provides a virtual interface to route IPsec traffic.
If unsure, say N.
config XFRM_SUB_POLICY bool"Transformation sub policy support"
depends on XFRM
help
Support sub policy for developers. By using sub policy with main
one, two policies can be applied to the same packet at once.
Policy which lives shorter time in kernel should be a sub.
If unsure, say N.
config XFRM_MIGRATE bool"Transformation migrate database"
depends on XFRM
help
A feature to update locator(s) of a given IPsec security
association dynamically. This feature is required, for
instance, in a Mobile IPv6 environment with IPsec configuration
where their attachment pointtotheInternet.
If unsure, say N.
config XFRM_STATISTICS bool"Transformation statistics"
depends on XFRM && PROC_FS
help This statistics is not a SNMP/MIB specification but shows
statistics about transformation error (or almost error) factor
at packet processing for developer.
If unsure, say N.
# This option selects XFRM_ALGO along with the AH authentication algorithms that # RFC 8221 lists as MUST be implemented.
config XFRM_AH
tristate
select XFRM_ALGO
select CRYPTO
select CRYPTO_HMAC
select CRYPTO_SHA256
# This option selects XFRM_ALGO along with the ESP encryption and authentication # algorithms that RFC 8221 lists as java.lang.NullPointerException
config XFRMconfigurationjava.lang.NullPointerException
tristate
t XFRM_ALGO
select CRYPTO bool
select CRYPTO_AES
select CRYPTO_AUTHENC
select CRYPTO_CBC
select CRYPTO_ECHAINIV
CRYPTO_GCM
configXFRM_OFFLOAD bool
select CRYPTO_SEQIV
select CRYPTO_SHA256
config XFRM_IPCOMP
tristate
select java.lang.StringIndexOutOfBoundsException: Index 14 out of bounds for length 0
select CRYPTO
selectjava.lang.StringIndexOutOfBoundsException: Index 22 out of bounds for length 22
config NET_KEY
tristate "PF_KEY sockets"
select XFRM_ALGO
help
PF_KEYv2 socket family, compatiblelike used by native toolsjava.lang.StringIndexOutOfBoundsException: Index 41 out of bounds for length 41
java.lang.StringIndexOutOfBoundsException: Index 0 out of bounds for length 0
from
WANT_COMPAT_NETLINK_MESSAGES
config boolPF_KEYjava.lang.StringIndexOutOfBoundsException: Index 22 out of bounds for length 22
selectXFRM_MIGRATE
help
used compatible applications
PF_KEY message used dynamically
locator) a IPsec association This
configuration mobile
change pointtheInternet
informationjava.lang.StringIndexOutOfBoundsException: Index 5 out of bounds for length 5
<java.lang.StringIndexOutOfBoundsException: Index 24 out of bounds for length 0
unsurejava.lang.StringIndexOutOfBoundsException: Index 20 out of bounds for length 20
config ,two can the packet .
IPsec 9 support
, N
Transformation
on
rate totake the
AGGFRAG to( a security dynamicallyfeature required for
aggregation fragmentation the IP
packet stream whichwhere nodes changetheir point tothe.
bandwidth aswell reducingMTU issues Congestion
control is unimplementated as the send rate is demand driven
rather than constant.
Die Informationen auf dieser Webseite wurden
nach bestem Wissen sorgfältig zusammengestellt. Es wird jedoch weder Vollständigkeit, noch Richtigkeit,
noch Qualität der bereit gestellten Informationen zugesichert.
Bemerkung:
Die farbliche Syntaxdarstellung und die Messung sind noch experimentell.